Re: [bess] Last Call: <draft-ietf-bess-bgp-sdwan-usage-19.txt> (BGP Usage for SD-WAN Overlay Networks) to Informational RFC

John Scudder <jgs@juniper.net> Tue, 06 February 2024 19:47 UTC

Return-Path: <jgs@juniper.net>
X-Original-To: bess@ietfa.amsl.com
Delivered-To: bess@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2B271C14F60E; Tue, 6 Feb 2024 11:47:20 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.104
X-Spam-Level:
X-Spam-Status: No, score=-2.104 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net header.b="RwJf3p4V"; dkim=pass (1024-bit key) header.d=juniper.net header.b="HB0GEoV1"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Ygu5Gu0fyy4k; Tue, 6 Feb 2024 11:47:15 -0800 (PST)
Received: from mx0b-00273201.pphosted.com (mx0b-00273201.pphosted.com [67.231.152.164]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8F084C14F69A; Tue, 6 Feb 2024 11:47:10 -0800 (PST)
Received: from pps.filterd (m0108163.ppops.net [127.0.0.1]) by mx0b-00273201.pphosted.com (8.17.1.24/8.17.1.24) with ESMTP id 416FkVeU006125; Tue, 6 Feb 2024 11:47:06 -0800
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h= from:to:cc:subject:date:message-id:references:in-reply-to :content-type:content-id:content-transfer-encoding:mime-version; s=PPS1017; bh=G9CMpnAXuALcpuKKcy8eyRCmuodS61FYmJD/fkeEqDM=; b=R wJf3p4VtU14F6Pl8f5GzIK57SyJ9L3UG+ClM/sAFQnPmE+auizZ9Ggzqdaf/4YJ1 6Y2HYLoGW1uFdfTjVd02w9spWyamF0JwvqAk8WZrQC2Ckkrsg7njA3YhdioB3k1R H+NNG9ln2f8NRl5gy5J0t3AHQhvUrw6MUiN18KCw6h7eyvYHIh+I/JODAsuXCdFK UjC2AOnMvPGcvP3RyRnqEEfUhaD4q3/ICO86Ku0uI7yZPius5NXtluehbfUel7JI LSNSsh6L3/W22gBvAjaCcHDJZ4ehurH3Z/AjEJmLEikQKubWaZepBAPXOI1FSuoU 3skYcnHx7dpKisldV/zKA==
Received: from sa9pr02cu001.outbound.protection.outlook.com (mail-southcentralusazlp17011010.outbound.protection.outlook.com [40.93.14.10]) by mx0b-00273201.pphosted.com (PPS) with ESMTPS id 3w3022x4y0-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Tue, 06 Feb 2024 11:47:05 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=ODbXC0Woqv8OpcqVCgDU5PxOmPQ+DuYO9geqkCAoanJxgiuP4kYmanxTDO33TYzdF/oPyVhI6pITPatspl2DYBWT3vdRiUGlE28iIG9Eyj1Vt1PaIc1IjvVLxBDkVReJke64l9NjIqSBIR3MFHFl2xZVf55oqznPdzPQFYzvPHInqskmkMSpDAGZVhZMED2WKmt5+thVLEPGjqOzjeTVveQVRPrvlx6UYqmIAzb7RxDEms9LSBCcUHz2Mcvf2FdD8BIjBtt/0r8r3rY0gr0uu6nRVBl4OG3VSFMRAYLurgw9H+o2WnjaTcktXCUi+DXxgPzxUfl+SUQvqkQUkRECVQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=G9CMpnAXuALcpuKKcy8eyRCmuodS61FYmJD/fkeEqDM=; b=LJ6LDuAT6t5iMnilhBl9emiKgWtmV7qAFXG+7+bXx7GrVB4gJ5CAktx5dl2P6TRSgHAjwzhbMHITIDB9fW2Zu71gzkVQtxRcTHFS04M2Yum8D0meb0Uq19z0Ht6r0LqIxr+Y7nZFBL1RpWsq/sTWyTXmECMO1utVkjCb9PPupCGbr3KWfIcbvmdfzROoZVNbtEcyz0HJSMchfm+9AhL8SVC307shW8CpFI5w5kcvSvTgiK6XjLDANv451CEMaGuF5BEot0ju0gIkIVz2nEEIUx1XjLxvjye298RMk1x14nghJGLTcdQTSvFgs9dsftpCn/KyliHBwNT3Odh8TuVGKQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=juniper.net; dmarc=pass action=none header.from=juniper.net; dkim=pass header.d=juniper.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=G9CMpnAXuALcpuKKcy8eyRCmuodS61FYmJD/fkeEqDM=; b=HB0GEoV1ArvzOHLh7axpL9y4bkFuLzJt7zS6UAOIb5rR10QNPbjem5aqAIW2vvqb3ePn10y8iQwVNdip/vz7dkT2nLR3hOtyEAuCvUFVPRqFBiOfv1Hxe5/0p1QtoxpPWqVcdYOWUL9J4uj9vmMyZck/XIBykxLTECTOpMh5Ysc=
Received: from CH2PR05MB6856.namprd05.prod.outlook.com (2603:10b6:610:3e::11) by CH3PR05MB10411.namprd05.prod.outlook.com (2603:10b6:610:1a3::5) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7249.31; Tue, 6 Feb 2024 19:46:56 +0000
Received: from CH2PR05MB6856.namprd05.prod.outlook.com ([fe80::a344:aaa5:e6ee:461e]) by CH2PR05MB6856.namprd05.prod.outlook.com ([fe80::a344:aaa5:e6ee:461e%5]) with mapi id 15.20.7249.035; Tue, 6 Feb 2024 19:46:56 +0000
From: John Scudder <jgs@juniper.net>
To: Linda Dunbar <linda.dunbar@futurewei.com>
CC: "last-call@ietf.org" <last-call@ietf.org>, Andrew Alston - IETF <andrew-ietf@liquid.tech>, "bess-chairs@ietf.org" <bess-chairs@ietf.org>, "bess@ietf.org" <bess@ietf.org>, "draft-ietf-bess-bgp-sdwan-usage@ietf.org" <draft-ietf-bess-bgp-sdwan-usage@ietf.org>, "matthew.bocci@nokia.com" <matthew.bocci@nokia.com>
Thread-Topic: Last Call: <draft-ietf-bess-bgp-sdwan-usage-19.txt> (BGP Usage for SD-WAN Overlay Networks) to Informational RFC
Thread-Index: AQHaVTBuUbYe5v0WyU6ufW3SQM4PZ7D9eiCAgAAa0QCAAALDgIAAGjYAgAAOLoA=
Date: Tue, 06 Feb 2024 19:46:56 +0000
Message-ID: <583D1FC7-C272-4F15-AA3F-F9B0C0DC4842@juniper.net>
References: <170680668432.50397.9113184985065227684@ietfa.amsl.com> <97DF1564-0E97-449A-869A-AC8EEF972BE2@juniper.net> <CO1PR13MB49204C51DF596A1B66C489BA85462@CO1PR13MB4920.namprd13.prod.outlook.com> <E93B5EEA-72A8-445D-8529-D5C2E3C0C824@juniper.net> <CO1PR13MB492016F5B2803E325AF0194C85462@CO1PR13MB4920.namprd13.prod.outlook.com>
In-Reply-To: <CO1PR13MB492016F5B2803E325AF0194C85462@CO1PR13MB4920.namprd13.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-mailer: Apple Mail (2.3696.120.41.1.8)
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: CH2PR05MB6856:EE_|CH3PR05MB10411:EE_
x-ms-office365-filtering-correlation-id: 66bfb67b-bc3e-4d83-b299-08dc274c600e
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CH2PR05MB6856.namprd05.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(376002)(396003)(346002)(136003)(366004)(39860400002)(230922051799003)(186009)(451199024)(1800799012)(64100799003)(2616005)(6506007)(966005)(26005)(478600001)(53546011)(45080400002)(66946007)(76116006)(55236004)(122000001)(6486002)(38100700002)(71200400001)(83380400001)(6916009)(6512007)(41300700001)(2906002)(54906003)(8936002)(4326008)(66446008)(64756008)(316002)(8676002)(66556008)(5660300002)(66476007)(36756003)(33656002)(66899024)(38070700009)(86362001)(45980500001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
Content-ID: <80463EA7CF0C704FB4670F75D1EC993C@namprd05.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CH2PR05MB6856.namprd05.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 66bfb67b-bc3e-4d83-b299-08dc274c600e
X-MS-Exchange-CrossTenant-originalarrivaltime: 06 Feb 2024 19:46:56.1902 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: svCf1MVJDA/fx3d8rKqVydf5IXT/XIBtZHjEX1mOCw0CkFJ+0pUJsrVh6zLx111D
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CH3PR05MB10411
X-Proofpoint-ORIG-GUID: bd34YOHKqtDLX5weXIMzILpqIoclaCdP
X-Proofpoint-GUID: bd34YOHKqtDLX5weXIMzILpqIoclaCdP
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.272,Aquarius:18.0.1011,Hydra:6.0.619,FMLib:17.11.176.26 definitions=2024-02-06_12,2024-01-31_01,2023-05-22_02
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 phishscore=0 adultscore=0 lowpriorityscore=0 bulkscore=0 clxscore=1015 suspectscore=0 spamscore=0 malwarescore=0 mlxscore=0 impostorscore=0 priorityscore=1501 mlxlogscore=976 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.19.0-2401310000 definitions=main-2402060137
Archived-At: <https://mailarchive.ietf.org/arch/msg/bess/SlkvHDB3uz9hnlZKSNBGrE4FO6w>
Subject: Re: [bess] Last Call: <draft-ietf-bess-bgp-sdwan-usage-19.txt> (BGP Usage for SD-WAN Overlay Networks) to Informational RFC
X-BeenThere: bess@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: BGP-Enabled ServiceS working group discussion list <bess.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/bess>, <mailto:bess-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/bess/>
List-Post: <mailto:bess@ietf.org>
List-Help: <mailto:bess-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/bess>, <mailto:bess-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Feb 2024 19:47:20 -0000

Hi Linda,

Without doing a full review of the proposed language in context, I don’t think I can offer a firm thumbs-up or thumbs-down. But generally speaking, if the document allows the reader to understand what the security architecture is and how they would realize it, either by referencing another specification or by describing it in the document, then that seems like a good approach.

Again, I encourage you to engage Roman as well, since it was his DISCUSS that got this conversation kicked off.

—John

> On Feb 6, 2024, at 1:56 PM, Linda Dunbar <linda.dunbar@futurewei.com> wrote:
> 
> 
> John, 
>  
> One key SD-WAN scenario involves expanding the existing VPN network by incorporating additional paths from other networks. In this context, the operator can efficiently utilize their primary management channel, initially designed for VPN control for the BGP to control the SD-WAN. Therefore, there is no strict requirement for BGP over TLS. We can remove the mention of BGP over TLS.
>  
> As Stephen suggested, we can add the following statement in the Security Consideration:
>  
> In SD-WAN deployments where no secure management channel exists between the SD-WAN controller and the SD-WAN edges, TLS or IPsec can be established between them. This allows for the creation of a secure BGP session over TLS [BGP-OVER-TLS]. However, it's crucial to conduct a thorough analysis to ensure the security of BGP over TLS.
>  
> What do you think? 
>  
> Thank you, 
>  
> Linda
> -----Original Message-----
> From: John Scudder <jgs@juniper.net> 
> Sent: Tuesday, February 6, 2024 11:22 AM
> To: Linda Dunbar <linda.dunbar@futurewei.com>
> Cc: last-call@ietf.org; Andrew Alston - IETF <andrew-ietf@liquid.tech>; bess-chairs@ietf.org; bess@ietf.org; draft-ietf-bess-bgp-sdwan-usage@ietf.org; matthew.bocci@nokia.com
> Subject: Re: Last Call: <draft-ietf-bess-bgp-sdwan-usage-19.txt> (BGP Usage for SD-WAN Overlay Networks) to Informational RFC
>  
> Yes, I noticed that, hence “no *IETF* specification”, it’s an individual draft. If the security model of the present spec relies on BGP-over-TLS, maybe a 00 individual contribution isn’t as firm a foundation as you’d like.
>  
> Of course, I can’t speak for Roman, it’s his DISCUSS, I was just drawing attention to it.
>  
> —John
>  
> > On Feb 6, 2024, at 12:12 PM, Linda Dunbar <linda.dunbar@futurewei.com> wrote:
> > 
> > John,
> > 
> > There is a draft on BGP over TLS: 
> > https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Furld
> > efense.com%2Fv3%2F__https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-w
> > irtgen-bgp-tls%2F__%3B!!NEt6yMaO-gk!EMln0MoNjY8Fex0l37MA8JE4Nvpdsho8Kh
> > znAatU81RneYnfGVqYueaJT2WggxyJfkcPuhO1uie8yo67KbfHq0s%24&data=05%7C02%
> > 7Clinda.dunbar%40futurewei.com%7Cfe90fdff921d4367586508dc27383f82%7C0f
> > ee8ff2a3b240189c753a1d5591fedc%7C1%7C0%7C638428369756801895%7CUnknown%
> > 7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJX
> > VCI6Mn0%3D%7C0%7C%7C%7C&sdata=rCtcgwfoWRsSjN0nTx7PkMpr1RY1jZvnuna63i14
> > 47A%3D&reserved=0 We are working with the author to enhance the draft.
> > 
> > We will add the reference to BGP over TLS. And remove the BGP over DTLS.
> > 
> > Can those changes address your comments?
> > 
> > Thank you,
> > Linda
> > 
> > -----Original Message-----
> > From: John Scudder <jgs@juniper.net>
> > Sent: Tuesday, February 6, 2024 9:36 AM
> > To: last-call@ietf.org
> > Cc: Andrew Alston - IETF <andrew-ietf@liquid.tech>;
> > bess-chairs@ietf.org; bess@ietf.org; 
> > draft-ietf-bess-bgp-sdwan-usage@ietf.org; matthew.bocci@nokia.com
> > Subject: Re: Last Call: <draft-ietf-bess-bgp-sdwan-usage-19.txt> (BGP 
> > Usage for SD-WAN Overlay Networks) to Informational RFC
> > 
> > I haven't done a full review of this document, but I did notice that Roman Danyliw balloted DISCUSS on version 15 [1], asking, among other things, "Are there pointers for BGP over DTLS? Over TLS?". This doesn't appear to have been addressed, either in Linda's reply to Roman [2], or in the text of the document. It seems ill-advised to be last calling a document with an unaddressed DISCUSS. For what it's worth, Roman's point seems to me to be on target - as far as I'm aware, there is no IETF specification for BGP over TLS, and I don't expect that there will ever be a specification for BGP over DTLS, given that BGP assumes a stream transport.
> > 
> > $0.02,
> > 
> > -John
> > 
> > [1] 
> > https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Furld
> > efense.com%2Fv3%2F__https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-i
> > etf-bess-bgp-sdwan-usage%2Fballot%2F*draft-ietf-bess-bgp-sdwan-usage_r
> > oman-danyliw__%3BIw!!NEt6yMaO-gk!EMln0MoNjY8Fex0l37MA8JE4Nvpdsho8KhznA
> > atU81RneYnfGVqYueaJT2WggxyJfkcPuhO1uie8yo67tnMhp0o%24&data=05%7C02%7Cl
> > inda.dunbar%40futurewei.com%7Cfe90fdff921d4367586508dc27383f82%7C0fee8
> > ff2a3b240189c753a1d5591fedc%7C1%7C0%7C638428369756810949%7CUnknown%7CT
> > WFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI
> > 6Mn0%3D%7C0%7C%7C%7C&sdata=s%2FferB2%2FcVh%2FZPN%2BuZ4pHJzhTWEHkI4roi1
> > b2MIbHSg%3D&reserved=0 [2] 
> > https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Furld
> > efense.com%2Fv3%2F__https%3A%2F%2Fmailarchive.ietf.org%2Farch%2Fmsg%2F
> > bess%2F-AT3GpMR6rr6-ywB5vWD7EbGk0w%2F__%3B!!NEt6yMaO-gk!EMln0MoNjY8Fex
> > 0l37MA8JE4Nvpdsho8KhznAatU81RneYnfGVqYueaJT2WggxyJfkcPuhO1uie8yo67ip_V
> > fT4%24&data=05%7C02%7Clinda.dunbar%40futurewei.com%7Cfe90fdff921d43675
> > 86508dc27383f82%7C0fee8ff2a3b240189c753a1d5591fedc%7C1%7C0%7C638428369
> > 756817021%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIi
> > LCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=Xcm0%2BjB%2F%2FwIJA%
> > 2BDBm9DzotKbuw%2Ft9XhGPnV9WBg9W3E%3D&reserved=0
> > 
> >> On Feb 1, 2024, at 11:58 AM, The IESG <iesg-secretary@ietf.org> wrote:
> >> 
> >> 
> >> The IESG has received a request from the BGP Enabled ServiceS WG
> >> (bess) to consider the following document: - 'BGP Usage for SD-WAN Overlay Networks'
> >> <draft-ietf-bess-bgp-sdwan-usage-19.txt> as Informational RFC
> >> 
> >> The IESG plans to make a decision in the next few weeks, and solicits 
> >> final comments on this action. Please send substantive comments to 
> >> the last-call@ietf.org mailing lists by 2024-02-15. Exceptionally,
> >> comments may be sent to iesg@ietf.org instead. In either case, please
> >> retain the beginning of the Subject line to allow automated sorting.
> >> 
> >> Abstract
> >> 
> >> 
> >>  The document discusses the usage and applicability of BGP as the  
> >> control plane for multiple SD-WAN scenarios. The document aims to  
> >> demonstrate how the BGP-based control plane is used for large-  scale 
> >> SD-WAN overlay networks with little manual intervention.
> >> 
> >>  SD-WAN edge nodes are commonly interconnected by multiple types of  
> >> underlay networks owned and managed by different network  providers.
> >> 
> >> 
> >> 
> >> 
> >> The file can be obtained via
> >> https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Furl
> >> defense.com%2Fv3%2F__https%3A%2F%2Furld%2F__%3B!!NEt6yMaO-gk!EMln0MoN
> >> jY8Fex0l37MA8JE4Nvpdsho8KhznAatU81RneYnfGVqYueaJT2WggxyJfkcPuhO1uie8y
> >> o67G5eRVA0%24&data=05%7C02%7Clinda.dunbar%40futurewei.com%7Cfe90fdff9
> >> 21d4367586508dc27383f82%7C0fee8ff2a3b240189c753a1d5591fedc%7C1%7C0%7C
> >> 638428369756822210%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIj
> >> oiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=IkU7mCcgk
> >> NaEYW0shKtMbxxOe9JpDU9uet6tl0iU4CQ%3D&reserved=0
> >> efense.com%2Fv3%2F__https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-
> >> i 
> >> etf-bess-bgp-sdwan-usage%2F__%3B!!NEt6yMaO-gk!E4My2sQFYwfDPTtjIaFd1jp
> >> C 
> >> RXVBB-u6OkgI3yHHnKfSsS4Kc80iA-x0qPn_krxB9c0LBSQsXvI1RN7dGgEtnA%24&dat
> >> a
> >> =05%7C02%7Clinda.dunbar%40futurewei.com%7C1a3011314c3340c61f4a08dc272
> >> 9
> >> 9e48%7C0fee8ff2a3b240189c753a1d5591fedc%7C1%7C0%7C638428306920978448%
> >> 7
> >> CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik
> >> 1
> >> haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=kzAz9c%2BLozBWwbLB6YBJxN3QsIBU
> >> 1
> >> Fu%2Bv2BiXF2a6ek%3D&reserved=0
> >> 
> >> 
> >> 
> >> No IPR declarations have been submitted directly on this I-D.
> >> 
> >> 
> >> 
> >> 
> >> 
> >> _______________________________________________
> >> IETF-Announce mailing list
> >> IETF-Announce@ietf.org
> >> https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Furl
> >> defense.com%2Fv3%2F__https%3A%2F%2Furld%2F__%3B!!NEt6yMaO-gk!EMln0MoN
> >> jY8Fex0l37MA8JE4Nvpdsho8KhznAatU81RneYnfGVqYueaJT2WggxyJfkcPuhO1uie8y
> >> o67G5eRVA0%24&data=05%7C02%7Clinda.dunbar%40futurewei.com%7Cfe90fdff9
> >> 21d4367586508dc27383f82%7C0fee8ff2a3b240189c753a1d5591fedc%7C1%7C0%7C
> >> 638428369756826869%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIj
> >> oiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=ztLYFfsZa
> >> WanW4MWH2yFY9dTWqo1BJIG4wdQKlLUMpA%3D&reserved=0
> >> efense.com%2Fv3%2F__https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2
> >> F 
> >> ietf-announce__%3B!!NEt6yMaO-gk!E4My2sQFYwfDPTtjIaFd1jpCRXVBB-u6OkgI3
> >> y 
> >> HHnKfSsS4Kc80iA-x0qPn_krxB9c0LBSQsXvI1RN5i_8mwVg%24&data=05%7C02%7Cli
> >> n 
> >> da.dunbar%40futurewei.com%7C1a3011314c3340c61f4a08dc27299e48%7C0fee8f
> >> f 
> >> 2a3b240189c753a1d5591fedc%7C1%7C0%7C638428306920983211%7CUnknown%7CTW
> >> F 
> >> pbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6
> >> M 
> >> n0%3D%7C0%7C%7C%7C&sdata=Rp1mvl6HqT6OrlmZbcKKnl3GgVLNckjOiojGF%2BDj12
> >> I
> >> %3D&reserved=0
> >